220-1102 Operational Procedures Practice Question
A technician implemented a change to a firewall rule on a production server. Shortly after, a critical business application stopped functioning. The technician reverted the change and restored service. According to change management best practices, which of the following should the technician have done BEFORE implementing the change?
⚠ Common exam trap
Many candidates assume testing in a lab is the most critical step before a production change, but CompTIA emphasizes that a backout plan is a mandatory prerequisite to ensure rapid recovery from unforeseen failures.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
Create a backout plan
Change management best practices require a documented backout plan before implementing any change to a production system. This ensures that if the change causes unexpected failures—like the critical business application stopping after the firewall rule modification—the technician can quickly revert to the known-good state. Without a predefined backout plan, the technician risks extended downtime while troubleshooting the issue.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
Test the change in a lab environment
Why it's wrong here
While testing the change in a lab environment validates the firewall rule in a controlled setting and reduces the risk of misconfiguration, it cannot perfectly replicate production traffic patterns, stateful connections, or interdependent services. Change management processes, as covered in A+ Core 2, require a documented backout plan as a non-negotiable step to restore service if the change fails unexpectedly. Lab testing is a valuable risk mitigation technique, but it does not satisfy the mandate for a predefined rollback procedure.
- ✓
Create a backout plan
Why this is correct
A backout plan explicitly details the exact commands, settings, or procedures needed to revert the firewall rule change to its prior state, including rollback verification steps and timing. This is the fundamental safety net in change management because a misconfigured firewall can lock out administrators or disrupt network connectivity, and a well-documented backout minimizes downtime. The plan must be created and approved before implementation, ready to execute if monitoring indicates any anomalies after the change is applied.
- ✗
Notify all users of the change
Why it's wrong here
User notification is part of a communications plan that sets expectations for potential service disruptions, particularly when a firewall change could affect access to specific applications or remote connectivity. However, notifying users provides no mechanism to restore service if the new rule inadvertently blocks critical traffic; it only creates awareness. Change management requires a technical rollback strategy, and informing stakeholders is complementary but never a substitute for a defined backout plan.
- ✗
Schedule a maintenance window
Why it's wrong here
Scheduling a maintenance window controls when the firewall change is applied to minimize user impact, typically placing it outside business hours or during an approved change window. While this reduces the consequences of a disruption, it does not define how to revert the change if it causes an outage or security issue—the backout plan remains a separate, essential artifact. Change management also requires the backout plan to be approved before the window opens, so timing alone cannot fulfill that requirement.
Go deeper
Related to this question
Learn chapter
Linux File System Structure
Key term
Change management
Change management is the structured process of planning, approving, implementing, and reviewing changes to IT systems to minimize risk and disruption.
Key term
Firewall
A firewall is a network security system that monitors and controls incoming and outgoing traffic based on predetermined security rules to protect trusted internal networks from untrusted external networks.
About these practice questions
Courseiva writes every 220-1102 question from scratch — 925 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →
JA
Written by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
This 220-1102 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the 220-1102 exam.